The repository includes focused tests, active commits from two contributors, and documentation that matches the package. MIT licensing and no install scripts reduce adoption friction; unpinned workflow actions and no security policy are minor hygiene concerns.
78%
Total Score
100
100
94
67
This is a young package with one release, first published 46 days ago. The short history limits evidence of long-term maintenance, but recent repository activity partly compensates.
The repository has no security policy, leaving vulnerability-reporting expectations undocumented. This is a transparency gap, but not a standalone reason to reject the release.
The sole workflow was fully analyzed with no dangerous triggers, untrusted checkouts, script injections, or audit findings. However, both of its two action references are unpinned, creating a minor reproducibility and workflow-integrity concern.
We didn't find any vulnerabilities for this package.
| Dependency | Last Release | Score |
|---|---|---|
filament/filament Version ^3.2 | — | — |
illuminate/support Version ^11.0|^12.0 | — | — |
illuminate/contracts Version ^11.0|^12.0 | — | — |
spatie/laravel-package-tools Version ^1.16 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.